Second-Tier Governance Deployment – Part II - IT Governance, Risk, and Compliance

IT Governance, Risk, and Compliance

Nov 9 2009   6:34PM GMT

Second-Tier Governance Deployment – Part II



Posted by: Robert E. Davis
Framework, Node, Stakeholder, Decision Theory, Fiduciary Responsibility, Governance Tree, Information Theory, Information Security Governance, Information Security Management, ISG, ISM, CISM

Governance definitional phrases typically embrace language explaining relationships and incentives among ‘oversight committee’ members, senior executives, and ’stakeholders’ resulting in financial accountability, transparent responsibility, and assertion reliability. Exercising effective governance throughout an entity requires the top level oversight committee and senior executives have an unambiguous understanding of what to expect from programs, systems, and processes. An entity’s oversight committee and senior executives’ should be equipped to direct resource deployments, evaluate the entity’s status regarding existing plans and determine strategies as well as objectives for effective and efficient programs. Foundationally, organizational information and communication relies on a hierarchical data structure, with the parent node (commonly designated as an entities ‘Tone at the Top’) connecting to offspring to drive cohesiveness.

View Part I of the Second-Tier Governance Development series here

Comment on this Post


You must be logged-in to post a comment. Log-in/Register